Job Description
About Marvell
Marvell’s semiconductor solutions are the essential building blocks of the data infrastructure that connects our world. Across enterprise, cloud and AI, and carrier architectures, our innovative technology is enabling new possibilities.
At Marvell, you can affect the arc of individual lives, lift the trajectory of entire industries, and fuel the transformative potential of tomorrow. For those looking to make their mark on purposeful and enduring innovation, above and beyond fleeting trends, Marvell is a place to thrive, learn, and lead.
Your Team, Your Impact
Marvell is a leading provider of security solutions such as CloudHSMs and Cryptographic accelerators. These solutions are used in data centres and enterprise campuses to secure assets, data and software which are critical to business. They are used various Keyvaults and cryptographic systems using frameworks like PKCS#11, JCE, Windows CNG, OpenSSL.
What You Can Expect
The core responsibilities for the CloudHSM Security Software team include:
- Development of high-performance cryptographic modules and services in C/C++ leveraging HSM capabilities
- Integration of Hardware Security Modules into secure platforms for encryption, key management, and signing operations
- Development of APIs and SDKs for internal and external consumers to securely interact with cryptographic systems
- Design and implementation of secure workflows for key generation, storage, rotation, and destruction
- Build, test, and automated validation infrastructure for cryptographic correctness, robustness, and compliance
The Security Software team plays a critical role in ensuring product security and trust. The role is to drive both technical excellence and successful delivery of secure systems across the full product lifecycle.
In this position you will be:
- Acting as a technical or project lead for security and cryptography-focused initiatives, driving development from requirements through production deployment
- Responsible for architecture, design, implementation, and validation of secure software systems leveraging HSMs
- Leading complex debugging efforts involving cryptographic failures, integration issues, and system-level security defects
- Collaborating with hardware, firmware, and platform teams to ensure seamless and secure integration of cryptographic components
- Driving Agile execution, including sprint planning, feature delivery, defect resolution, and CI/CD pipeline improvements
- Translating complex security requirements and standards into clear technical specifications, documentation, and design artifacts
- Ensuring compliance with relevant security standards and contributing to audit and certification processes
Some possible tasks will be:
- Designing and implementing secure cryptographic modules interfacing with HSM devices
- Developing and optimizing encryption, decryption, and key lifecycle workflows for performance-sensitive environments
- Debugging difficult issues involving key mismatches, cryptographic failures, or HSM communication errors
- Building automated test frameworks to validate cryptographic correctness and resilience
- Collaborating with cross-functional teams to define secure APIs and system architectures
- Mentoring junior engineers on secure coding practices and cryptographic fundamentals
- Conducting design and code reviews with a focus on security, scalability, and maintainability
- Driving improvements in CI/CD pipelines to incorporate security validation and compliance checks
- Staying current with evolving cryptographic standards, vulnerabilities, and threat models
What We're Looking For
Minimum Requirements:
- Bachelor’s/Master’s degree/PhD in Computer Science, Electrical Engineering, or a related technical field with 17+ years of relevant professional experience,
- Strong hands-on experience in systems programming using C and C++, including performance optimization, memory management, and low-level debugging
- Proven experience working with Hardware Security Modules (HSM), including integration, configuration, secure key storage, and lifecycle management
- Software engineering experience with primary focus on the design, implementation, and validation of modern cryptographic systems (symmetric and asymmetric)
- Solid understanding of cryptographic algorithms such as AES, RSA, ECC, hashing, digital signatures, and secure key exchange mechanisms
- Experience designing secure software systems aligned with industry standards and best practices for confidentiality, integrity, and availability
- Experience working in Agile environments, including sprint planning, backlog management, and iterative feature delivery
- Hands-on experience with CI/CD pipelines, automated build/test frameworks, and production deployments
- Strong debugging and root-cause analysis skills, especially across complex software and hardware interactions
- Excellent verbal and written communication skills, with the ability to collaborate effectively across cross-functional teams
- Strong attention to detail, ownership mindset, and a passion for security engineering, cryptography, and solving complex problems
Nice to have:
- Experience with FIPS 140-2/140-3, Common Criteria, PCI PTS or similar certification processes
- Familiarity with cryptographic APIs and standards such as PKCS#11, KMIP, TLS, or IPSec
- Experience integrating HSMs into distributed systems, cloud environments, or microservices architectures
- Understanding of secure boot, trusted execution environments (TEE), and hardware root of trust concepts
- Experience with secure software development lifecycle (SSDLC), including threat modeling, static/dynamic analysis, and vulnerability management
- Familiarity with side-channel attack mitigations, timing attack prevention, and secure coding practices
- Experience with scripting languages (e.g., Python) for automation, testing, or tooling
- Exposure to containerization, orchestration, and secure service-to-service communication
- Experience mentoring engineers, leading design reviews, and influencing technical direction
- Familiarity with debugging tools and techniques across hardware/software boundaries
Additional Compensation and Benefit Elements
With competitive compensation and great benefits, you will enjoy our workstyle within an environment of shared collaboration, transparency, and inclusivity. We’re dedicated to giving our people the tools and resources they need to succeed in doing work that matters, and to grow and develop with us. For additional information on what it’s like to work at Marvell, visit our Careers page.
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.
Interview Integrity
To support fair and authentic hiring practices, candidates are not permitted to use AI tools (such as transcription apps, real-time answer generators like ChatGPT or Copilot, or automated note-taking bots) during interviews.
These tools must not be used to record, assist with, or enhance responses in any way. Our interviews are designed to evaluate your individual experience, thought process, and communication skills in real time. Use of AI tools without prior instruction from the interviewer will result in disqualification from the hiring process.
This position may require access to technology and/or software subject to U.S. export control laws and regulations, including the Export Administration Regulations (EAR). As such, applicants must be eligible to access export-controlled information as defined under applicable law. Marvell may be required to obtain export licensing approval from the U.S. Department of Commerce and/or the U.S. Department of State. Except for U.S. citizens, lawful permanent residents, or protected individuals as defined by 8 U.S.C. 1324b(a)(3), all applicants may be subject to an export license review process prior to employment.
#LI-RV1